CVE-2019-6852

A

CWE-200: Information Exposure vulnerability exists in Modicon Controllers (M340 CPUs, M340 communication modules, Premium CPUs, Premium communication modules, Quantum CPUs, Quantum communication modules - see security notification for specific versions), which could cause the disclosure of FTP hardcoded credentials when using the Web server of the controller on an unsecure network.

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:schneider-electric:bmx_p34x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmx_p34x:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:schneider-electric:bmx_noe_0100_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmx_noe_0100:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:schneider-electric:bmx_noe_0110_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmx_noe_0110:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:schneider-electric:bmx_noc_0401_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmx_noc_0401:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:schneider-electric:tsx_p57x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:tsx_p57x:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:schneider-electric:tsx_ety_x103_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:tsx_ety_x103:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:schneider-electric:140_cpu6x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:140_cpu6x:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:schneider-electric:140_noe_771x1_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:140_noe_771x1:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:schneider-electric:140_noc_78x00_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:140_noc_78x00:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:schneider-electric:140_noc_77101_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:140_noc_77101:-:*:*:*:*:*:*:*

History

21 Nov 2024, 04:47

Type Values Removed Values Added
References () https://www.schneider-electric.com/ww/en/download/document/SEVD-2019-281-02/ - Not Applicable, Vendor Advisory () https://www.schneider-electric.com/ww/en/download/document/SEVD-2019-281-02/ - Not Applicable, Vendor Advisory